Ethical Hacking - Digital Forensics

Digital forensics, sometimes called computer forensics. Digital forensics is a method or technique to collect evidence found on computers or similar digital storage media devices. which can be used in the court of law. Digital forensics plays an important role in cyber security to detect cyber attacks, malicious programme as well as to collect evidence against cyber criminals.

Process of Digital forensics -

Identification : It is the first step in the digital forensics process. The identification process mainly includes things like what evidence is present, where it is stored, and lastly, how it is stored (in which format).

Preservation : In this process, data is isolated, secured, and preserved. It includes preventing people from using the digital device so that digital evidence is not tampered with.

Analysis : In this process, investigation agents reconstruct fragments of data and draw conclusions based on evidence found. However, it might take numerous iterations of examination to support a specific crime theory.

Documentation : In this process, a record of all the visible data must be created. It helps in recreating the crime scene and reviewing it. It Involves proper documentation of the crime scene along with photographing, sketching, and crime-scene mapping.

Presentation : In this last process include summarization and explanation of conclusions.